Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      Sunshine And March Vibes (2025 Wallpapers Edition)

      May 16, 2025

      The Case For Minimal WordPress Setups: A Contrarian View On Theme Frameworks

      May 16, 2025

      How To Fix Largest Contentful Paint Issues With Subpart Analysis

      May 16, 2025

      How To Prevent WordPress SQL Injection Attacks

      May 16, 2025

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025

      Bing Search APIs to be “decommissioned completely” as Microsoft urges developers to use its Azure agentic AI alternative

      May 16, 2025

      Microsoft might kill the Surface Laptop Studio as production is quietly halted

      May 16, 2025

      Minecraft licensing robbed us of this controversial NFL schedule release video

      May 16, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      The power of generators

      May 16, 2025
      Recent

      The power of generators

      May 16, 2025

      Simplify Factory Associations with Laravel’s UseFactory Attribute

      May 16, 2025

      This Week in Laravel: React Native, PhpStorm Junie, and more

      May 16, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025
      Recent

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025

      Bing Search APIs to be “decommissioned completely” as Microsoft urges developers to use its Azure agentic AI alternative

      May 16, 2025

      Microsoft might kill the Surface Laptop Studio as production is quietly halted

      May 16, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Development»Weekly Vulnerability Report: Cyble Urges Fixes in ServiceNow, Outlook, Docker Engine

    Weekly Vulnerability Report: Cyble Urges Fixes in ServiceNow, Outlook, Docker Engine

    August 1, 2024

    Cyble Research & Intelligence Labs (CRIL) researchers investigated 22 security vulnerabilities this week, plus industrial control system (ICS) vulnerabilities and dark web exploits, to help us arrive at our list of six vulnerabilities that security teams need to prioritize.

    Those vulnerabilities include exploitable flaws in ServiceNow, Acronis, VMware, Microsoft Outlook, Progress Telerik and Docker Engine.

    Each week, The Cyber Express partners with Cyble’s highly skilled dark web and threat intelligence researchers to highlight the vulnerabilities that are at higher risk of exploit and attack and should be prioritized for fixes by security teams.

    The Week’s Top Vulnerabilities

    These are the six high-severity and critical vulnerabilities that Cyble researchers have highlighted this week.

    CVE-2024-37085: VMware ESXi

    Impact Analysis: This high-severity authentication bypass vulnerability impacts VMware ESXi, an enterprise-class, type-1 hypervisor, and is under active attack by ransomware groups. A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user management. The attacker can also add new users to the ‘ESX Admins’ group and leverage admin permissions to steal sensitive data from VMs, move laterally through victims’ networks, and then encrypt the ESXi hypervisor’s file system, causing outages and disrupting business operations.

    Internet Exposure? Yes

    Patch Available? Yes

    CVE-2017-11774: Microsoft Outlook

    Impact Analysis: This high-severity vulnerability impacts Microsoft Outlook 2010 SP2, Outlook 2013 SP1 and RT SP1, and Outlook 2016, and allows an attacker to execute arbitrary commands due to how Microsoft Office handles objects in memory. Recently, researchers released a new red team post-exploitation framework named “Specula,” with which Microsoft Outlook can be turned into a C2 beacon to remotely execute code. The framework works by creating a custom Outlook Home Page using WebView by exploiting CVE-2017-11774. Since outlook.exe is a trusted process, it makes it easier for attackers to evade existing software as commands are executed. Cyble researchers concluded that because of the new research, “we believe that we may observe attackers using the tool for malicious purposes in the future.”

    Internet Exposure? No

    Patch Available? Yes

    CVE-2024-4879: ServiceNow

    Impact Analysis: This critical severity input validation vulnerability affects the ServiceNow cloud-based enterprise workflow management platform. The vulnerability allows unauthenticated attackers to perform remote code execution on multiple versions of the Now Platform and leads to date breach attacks.

    Internet Exposure? Yes

    Patch Available? Yes

    CVE-2024-6327: Progress Telerik Report Server

    Impact Analysis: This critical insecure deserialization vulnerability impacts Progress Telerik Report Server, a server-based reporting platform. Attackers can exploit the vulnerability to compromise vulnerable devices, leading to remote code execution and later data exfiltration attacks. It’s the second time in recent months that Progress Telerik has been hit by major vulnerabilities.

    Internet Exposure? Yes

    Patch Available? Yes

    CVE-2024-41110: Docker Engine

    Impact Analysis: This 10/10 critical vulnerability impacts certain versions of Docker Engine, an open-source client-server technology. Attackers can leverage the vulnerability to bypass authorization plugins (AuthZ) under certain circumstances, which could lead to unauthorized actions, including privilege escalation.

    Internet Exposure? No

    Patch Available? Yes

    CVE-2023-45249: Acronis Cyber Infrastructure

    Impact Analysis: This critical remote command execution vulnerability impacts Acronis Cyber Infrastructure (ACI), a multi-tenant, hyper-converged infrastructure solution designed for cyber protection. The vulnerability allows attackers to bypass authentication on vulnerable servers using default credentials. Recently, CISA added the vulnerability to its Known Exploited Vulnerabilities Catalog, implying that attackers are actively exploiting the flaw to target organizations.

    Internet Exposure? Yes

    Patch Available? Yes

    Dark Web Exploits, ICS Vulnerabilities, and More

    The full Cyble report for subscribers also looks at 11 vulnerability exploits discussed on the dark web, three industrial control system (ICS) vulnerabilities, and the vulnerabilities with the highest number of web asset exposures, some numbering in the hundreds of thousands.

    The vulnerability report is just one of hundreds produced by Cyble researchers each week, in addition to client-specific customizable reporting and alerts. Cyble’s weekly sensor report, for example, this week looked at roughly 20 vulnerability exploits and malware, ransomware and phishing attacks observed in Cyble’s scanning activities, along with indicators of compromise (IoCs).

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleGermany Attributes 2021 Attack On Federal Cartography Agency To China
    Next Article White House Confirms Russia-U.S. Prisoner Swap that Likely Included Hackers and Spies

    Related Posts

    Security

    Nmap 7.96 Launches with Lightning-Fast DNS and 612 Scripts

    May 17, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2024-47893 – VMware GPU Firmware Memory Disclosure

    May 17, 2025
    Leave A Reply Cancel Reply

    Continue Reading

    Cypress Accessibility Testing: Tips for Success

    Development

    What’s new in Ubuntu 24.04.2? Kernel 6.11, better graphics, and more

    News & Updates

    Enhancing Diffusion Models: The Role of Sparsity and Regularization in Efficient Generative AI

    Machine Learning

    The Future of Thinking: How Manus AI is Redefining Human Potential?

    Artificial Intelligence

    Highlights

    News & Updates

    “It’s like a 5070 Ti with 8 missing ROPs” — Leaked RTX 5070 performance doesn’t sit well with NVIDIA faithful

    February 25, 2025

    Missing ROPs in NVIDIA’s Blackwell GPUs and leaked RTX 5070 performance metrics aren’t sitting well…

    New Banshee Stealer Targets 100+ Browser Extensions on Apple macOS Systems

    August 16, 2024

    6 ways to utilize the clever ideas behind innovative startups

    July 31, 2024

    Node.js v22: “Jod” Binaries Available

    December 20, 2024
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.